[Full-disclosure] gallarific backdoored , vulnerable to xss

Andrew Farmer andfarm at gmail.com
Tue Apr 15 23:26:18 BST 2008


On 15 Apr 08, at 09:07, Thomas Pollet wrote:
> I was looking at the free version of gallarific, and I found some  
> suspicious
> code in the scopbin directory.
> Attached is a file I found in the zip i downloaded, in case someone  
> wants to
> decode it.

Looks like a component of the ScopBin PHP obfuscator. It's not  
particularly hard to reverse, but I didn't bother.




Full-Disclosure is hosted and sponsored by Secunia.